PT-2007-5626 · Image Space · Factor

Published

2007-08-21

·

Updated

2018-10-15

·

CVE-2007-4445

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Image Space rFactor versions 1.250 and earlier
Description The issue allows remote attackers to cause a denial of service, resulting in either a daemon crash or a UDP port block, via specially crafted packets. Specifically, the daemon crash can occur through packets with IDs 0x30, 0x38, and invalid 13-bit integers in packets with IDs 0x60 and 0x68. The UDP port block can be achieved through packets with IDs 0x20 and 0x28.
Recommendations For Image Space rFactor versions 1.250 and earlier, as a temporary workaround, consider restricting or disabling the handling of packets with IDs 0x20, 0x28, 0x30, 0x38, 0x60, and 0x68 until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-4445

Affected Products

Factor